Talent.com
No longer accepting applications
Security Engineer III

Security Engineer III

CME GroupKalyan-Dombivli, IN
23 hours ago
Job description

The Application Security Engineer leads efforts to enhance application security and the secure software development lifecycle. This individual is responsible for performing manual application security assessments (application pentests) and communicating security findings to the developers and QA teams. Additionally, the individual will provide application design support and security best practice guidance, in the form of consultations, to various development teams and business stakeholders. This individual will also actively promote security through engaging interactive workshops and exercises, such as internal Capture The Flag (CTF) events.

Principal Accountabilities

  • Serve as the primary application security expert for development teams, offering security consulting and best practice guidance throughout the Software Development Life Cycle (SDLC).
  • Perform manual security assessments at key points in the SDLC.
  • Produce documentation (reports) and present findings of manual security assessments to various stakeholders, including senior leadership.
  • Participate in security architecture reviews and threat modelling.
  • Contribute to automation initiatives, including the integration of new security tools and processes (e.g., AI).
  • Demonstrate a commitment to continuous education and staying current within the application security domain, promoting collaboration and knowledge sharing.

Skills Requirements

  • 5+ years experience with industry standard penetration testing, or ability to demonstrate equivalent knowledge.
  • Expertise performing blackbox / greybox / whitebox security assessments of applications (e.g., web applications, APIs, thick clients, web sockets) which use HTTP and / or proprietary protocols.
  • Expert level skills with application security testing tools including : Burpsuite, sqlmap, nmap, etc.
  • Experience performing manual reviews of application source code for security vulnerabilities written in various languages including : Java, Javascript, .Net (C#), etc.
  • Experience with Cloud architectures, security principles and services. Google Cloud Platform (GCP) is preferred.
  • Experience with automating security testing and / or other relevant activities to streamline service delivery. Preferred scripting languages : Python, bash, Powershell, etc.
  • Experience with UNIX or Linux.
  • A self-starter who is highly motivated. Proactively seek answers, ask for help when needed, and communicate solutions.
  • Excellent Oral and Written communications skills. Ability to effectively communicate and interface with peers and stakeholders at all levels, including senior leadership.
  • Nice To Have

  • Experience in securing modern APIs, including knowledge of authentication / authorization standards like OAuth 2.0 and JWT, and understanding API-specific vulnerabilities.
  • Experience in conducting formal threat modeling using frameworks like STRIDE to identify potential security flaws in the design phase.
  • Experience with AI / ML security testing methodologies, including understanding of OWASP Top 10 for Large Language Models (LLMs) and common AI security vulnerabilities, and using AI to improve pentesting.
  • Experience with prior development work.
  • Experience with application reverse engineering and using tools such as : Java decompilers, .Net decompilers, IDAPro, etc.
  • Experience with Capture The Flag (CTF) competitions and bug bounty programs.
  • Relevant industry certifications such as OSCP, eWPTX, CCSP, GCP Professional Cloud Security Engineer, etc.
  • Create a job alert for this search

    Security Engineer • Kalyan-Dombivli, IN

    Related jobs
    • Promoted
    • New!
    Security Engineer III

    Security Engineer III

    CME Groupnavi mumbai, maharashtra, in
    The Application Security Engineer leads efforts to enhance application security and the secure software development lifecycle. This individual is responsible for performing manual application securi...Show moreLast updated: 22 hours ago
    • Promoted
    • New!
    Cloud Security Engineer

    Cloud Security Engineer

    Tata Consultancy Servicesdombivli, maharashtra, in
    Need more AWS native experience (Security + Infrastructure.IAM, Organizations, KMS, Cert Manager, Parameter store, SSM / Systems Manager, Secrets Manager, Guard duty, Inspector, Access Analyzer, Clou...Show moreLast updated: 22 hours ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    CareerUS SolutionsKalyan-Dombivli, IN
    Cyber Security Engineer – Job Description.The Cyber Security Engineer is responsible for designing, implementing, and maintaining security systems to protect the organization’s computer networks, a...Show moreLast updated: 4 days ago
    • Promoted
    Infrastructure security Engineer - Director - Cyber Security Engineering

    Infrastructure security Engineer - Director - Cyber Security Engineering

    Morgan StanleyMumbai, India
    We're seeking someone to join our team as Director in Cyber to advise secure design, provide security consulting and perform security assessments of technology systems and processes to identify bus...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Security IAM Engineer

    Security IAM Engineer

    Tata Consultancy Servicesmumbai, maharashtra, in
    Required Technical Skill Set - GCP Identity and Access Management (IAM), Access Policies, Security Protocols, Networking Troubleshooting. Location - Ahmedabad & Chennai.A clear understanding of acce...Show moreLast updated: 22 hours ago
    • Promoted
    Senior Information Security Engineer (ISO27001)

    Senior Information Security Engineer (ISO27001)

    IDfyMumbai, Maharashtra, India
    IDfy is Asia’s leading TrustStack, trusted by the best, with global expertise and enterprise-grade tech, we’re solving trust challenges, making compliance easy, fraud detection smarter, and onboard...Show moreLast updated: 8 days ago
    • Promoted
    Cyber Security Engineer

    Cyber Security Engineer

    NeuroDiscovery AIMumbai, IN
    NeuroDiscovery AI is a rapidly growing health-tech company building secure platforms and data pipelines that process de-identified patient information from global neuro hospitals.Our mission is to ...Show moreLast updated: 5 days ago
    • Promoted
    Senior Security Engineer – Cloud, AI & Application Security

    Senior Security Engineer – Cloud, AI & Application Security

    Symosis SecurityKalyan-Dombivli, IN
    Symosis Security is a fast-growing cybersecurity and technology firm helping global organizations strengthen their cloud, application, and AI security posture. We combine deep technical expertise wi...Show moreLast updated: 9 days ago
    • Promoted
    Cyber Security Engineer with Splunk

    Cyber Security Engineer with Splunk

    IntraEdgeMumbai, IN
    This role will lead the development and implementation of intelligent security solutions using SIEM, SOAR, and machine learning to enhance detection, response, and operational efficiency across the...Show moreLast updated: 30+ days ago
    • Promoted
    Security (DevSecOps)and QA (Automation)

    Security (DevSecOps)and QA (Automation)

    PioVation GmbHThane, IN
    If you care about European-grade safety, quality, and compliance, read on.Senior Security Engineer (DevSecOps).Application & cloud security (threat modeling, secure SDLC).Kubernetes security (netwo...Show moreLast updated: 15 days ago
    • Promoted
    Threat Detection Engineer

    Threat Detection Engineer

    Value Point Systems Pvt LtdThāne, Republic Of India, IN
    Engineering for Tenable AD and Deception Tool.The platform engineering Specialist is responsible for technical support and administration work, reviewing Logs and signatures identified in tools, de...Show moreLast updated: 5 days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    ArcanaMumbai, IN
    As our Lead Security Engineer, you'll own and elevate Arcana's overall security posture - cloud, on-prem, and everything in between. You'll design and enforce policies, automate controls, and harden...Show moreLast updated: 30+ days ago
    • Promoted
    Lead Security Engineer

    Lead Security Engineer

    interface.aiMumbai, IN
    Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    AWS Cloud Security

    AWS Cloud Security

    LTIMindtreeThane, IN
    Job Title AWS Cloud Security Engineer.We are looking for an experienced AWS Cloud Security Engineer to design implement and manage security solutions for AWS environments The role involves ensuring...Show moreLast updated: 22 hours ago
    • Promoted
    Security Engineer

    Security Engineer

    Check Point SoftwareMumbai, Maharashtra, India
    As the world’s leading vendor of Cyber Security, facing the most sophisticated threats and attacks, we’ve assembled a global team of the most driven, creative and innovative people.At Check Point, ...Show moreLast updated: 12 days ago
    • Promoted
    Application Security Engineer

    Application Security Engineer

    FoodsmartMumbai, IN
    Foodsmart is the leading telenutrition and foodcare solution, backed by a robust network of Registered Dietitians.Our platform is designed to foster healthier food choices, drive lasting behavior c...Show moreLast updated: 30+ days ago
    • Promoted
    Sr. Lead - Cloud Security

    Sr. Lead - Cloud Security

    Sycamore Informatics Inc.Kalyan-Dombivli, IN
    Cloud security framework; Strong scripting skills with PowerShell and.Solid understanding of version control tools, particularly Git. Experience with cloud platforms, including AWS, Azure and GCP.Pr...Show moreLast updated: 30+ days ago
    • Promoted
    Infrastructure Security Engineer - Director - Cyber Security Engineering

    Infrastructure Security Engineer - Director - Cyber Security Engineering

    Morgan StanleyMumbai, India
    We're seeking someone to join our team as Director in Cyber to advise secure design, provide security consulting and perform security assessments of technology systems and processes to identify bus...Show moreLast updated: 30+ days ago